Document toolboxDocument toolbox

directory.openldap

Introduction

The tags beginning with directory.openldap identify events generated by OpenLDAP.

Valid tags and data tables

The full tag must have four levels. The first two are fixed as directory.openldap and represent technology and brand. The third level corresponds to the product while the fourth identifies the type of events sent.

These are the valid tags and corresponding data tables that will receive the parsers' data:

Product / Service

Tags

Data tables

Product / Service

Tags

Data tables

OpenLDAP

directory.openldap.access.event

directory.openldap.access.event

For more information, read more About Devo tags.

Table structure

These are the fields displayed in this table:

Field

Type

Extra fields

Field

Type

Extra fields

eventdate

timestamp

 

hostname

str

 

unix_hex_time

str

 

connection

str

 

operation

str

 

tag_number

str

 

error

str

 

queued_time

float8

 

elapsed_time

float8

 

number_of_entry

str

 

text

str

 

file_descriptor

str

 

source_ip

ip4

 

source_port

str

 

destination_ip

ip4

 

destination_port

str

 

distinguished_name

str

 

method

str

 

mechanism

str

 

security_strength_factor

str

 

bind_ssf

str

 

base

str

 

scope

str

 

dereference

str

 

filter

str

 

attribute

str

 

request_type

str

 

response_type

str

 

message

str

 

hostchain

str

✓

tag

str

✓

rawMessage

str

✓

Â